CVE-2013-6170
- EPSS 0.69%
- Veröffentlicht 17.10.2013 23:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
Juniper Junos 10.0 before 10.0S28, 10.4 before 10.4R7, 11.1 before 11.1R5, 11.2 before 11.2R2, and 11.4 before 11.4R1, when in a Next-Generation Multicast VPN (NGEN MVPN) environment, allows remote attackers to cause a denial of service (RPD routing ...
CVE-2013-4684
- EPSS 0.84%
- Veröffentlicht 11.07.2013 14:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
flowd in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R8, 12.1 before 12.1R7, and 12.1X44 before 12.1X44-D15 on SRX devices, when PIM and NAT are enabled, allows remote attackers to cause a denial of service (daemon crash) via crafted PIM packe...
- EPSS 7.49%
- Veröffentlicht 11.07.2013 14:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Buffer overflow in flowd in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R7, 12.1 before 12.1R6, and 12.1X44 before 12.1X44-D15 on SRX devices, when Captive Portal is enabled with the UAC enforcer role, allows remote attackers to execute arbitr...
CVE-2013-4686
- EPSS 0.65%
- Veröffentlicht 11.07.2013 14:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The kernel in Juniper Junos 10.4 before 10.4R14, 11.4 before 11.4R8, 11.4X27 before 11.4X27.43, 12.1 before 12.1R6, 12.1X44 before 12.1X44-D20, 12.2 before 12.2R4, and 12.3 before 12.3R2, in certain VLAN configurations with unrestricted arp-resp and ...
CVE-2013-4687
- EPSS 2.37%
- Veröffentlicht 11.07.2013 14:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
flowd in Juniper Junos 10.4 before 10.4S14, 11.2 and 11.4 before 11.4R6-S2, and 12.1 before 12.1R6 on SRX devices, when certain Application Layer Gateways (ALGs) are enabled, allows remote attackers to cause a denial of service (daemon crash) via cra...
CVE-2013-4688
- EPSS 0.49%
- Veröffentlicht 11.07.2013 14:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
flowd in Juniper Junos 10.4 before 10.4R11 on SRX devices, when the MSRPC Application Layer Gateway (ALG) is enabled, allows remote attackers to cause a denial of service (daemon crash) via crafted MSRPC requests, aka PR 772834.
- EPSS 0.39%
- Veröffentlicht 11.07.2013 14:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Juniper Junos 10.4 before 10.4S13, 11.4 before 11.4R7-S1, 12.1 before 12.1R5-S3, 12.1X44 before 12.1X44-D20, and 12.1X45 before 12.1X45-D10 on the SRX1400, SRX3400, and SRX3600 does not properly initialize memory locations used during padding of Ethe...
CVE-2009-3485
- EPSS 1.9%
- Veröffentlicht 30.09.2009 15:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Cross-site scripting (XSS) vulnerability in the J-Web interface in Juniper JUNOS 8.5R1.14 and 9.0R1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the default URI.
CVE-2009-3486
- EPSS 0.39%
- Veröffentlicht 30.09.2009 15:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Multiple cross-site scripting (XSS) vulnerabilities in the J-Web interface in Juniper JUNOS 8.5R1.14 allow remote authenticated users to inject arbitrary web script or HTML via the host parameter to (1) the pinghost program, reachable through the dia...
CVE-2009-3487
- EPSS 0.39%
- Veröffentlicht 30.09.2009 15:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Multiple cross-site scripting (XSS) vulnerabilities in the J-Web interface in Juniper JUNOS 8.5R1.14 allow remote authenticated users to inject arbitrary web script or HTML via (1) the JEXEC_OUTID parameter in a JEXEC_MODE_RELAY_OUTPUT action to the ...